Odvirování PC, zrychlení počítače, vzdálená pomoc prostřednictvím služby neslape.cz

Notebook HP - neustálé vytížení CPU

Máte problém s virem? Vložte sem log z FRST nebo RSIT.

Moderátor: Moderátoři

Pravidla fóra
Pokud chcete pomoc, vložte log z FRST [návod zde] nebo RSIT [návod zde]

Jednotlivé thready budou po vyřešení uzamčeny. Stejně tak ty, které budou nečinné déle než 14 dní. Vizte Pravidlo o zamykání témat. Děkujeme za pochopení.

!NOVINKA!
Nově lze využívat služby vzdálené pomoci, kdy se k vašemu počítači připojí odborník a bližší informace o problému si od vás získá telefonicky! Více na www.neslape.cz
Odpovědět
Zpráva
Autor
samsungs6edge
Návštěvník
Návštěvník
Příspěvky: 138
Registrován: 26 kvě 2017 14:48

Notebook HP - neustálé vytížení CPU

#1 Příspěvek od samsungs6edge »

Dobrý den dnes jsem provedl čistou instalaci staršího notebooku HP Notebook 15-af105nc a po instalaci Windows Update a ovladačů je stále vytížen procesor. Můžete prosím zkontrolovat log. Děkuji mnohokrát za pomoc

FRST:

Scan result of Farbar Recovery Scan Tool (FRST) (x64) Version: 23-05-2023
Ran by HP (administrator) on DESKTOP-L1JM3CQ (HP HP Notebook) (23-05-2023 19:42:54)
Running from C:\Users\HP\Desktop\FRST64.exe
Loaded Profiles: HP
Platform: Microsoft Windows 10 Pro Version 22H2 19045.2965 (X64) Language: Čeština (Česko)
Default browser: Chrome
Boot Mode: Normal

==================== Processes (Whitelisted) =================

(If an entry is included in the fixlist, the process will be closed. The file will not be moved.)

(atiesrxx.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atieclxx.exe
(C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe
(C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
(explorer.exe ->) (Google LLC -> Google LLC) C:\Program Files\Google\Chrome\Application\chrome.exe <13>
(services.exe ->) (Microsoft Windows Hardware Compatibility Publisher -> AMD) C:\Windows\System32\atiesrxx.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\MsMpEng.exe
(services.exe ->) (Microsoft Windows Publisher -> Microsoft Corporation) C:\ProgramData\Microsoft\Windows Defender\Platform\4.18.2304.8-0\NisSrv.exe
(services.exe ->) (Realtek Semiconductor Corp. -> Realtek Semiconductor) C:\Program Files\Realtek\Audio\HDA\RtkAudioService64.exe
(services.exe ->) (Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPEnhService.exe
(svchost.exe ->) (Microsoft Corporation -> ) C:\Program Files\WindowsApps\Microsoft.DesktopAppInstaller_1.19.10173.0_x64__8wekyb3d8bbwe\WindowsPackageManagerServer.exe
(svchost.exe ->) (Microsoft Corporation -> Microsoft Corporation) C:\Program Files (x86)\Microsoft\EdgeUpdate\MicrosoftEdgeUpdate.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\dllhost.exe
(svchost.exe ->) (Microsoft Windows -> Microsoft Corporation) C:\Windows\System32\wlanext.exe
(Synaptics Incorporated -> Synaptics Incorporated) C:\Program Files\Synaptics\SynTP\SynTPHelper.exe

==================== Registry (Whitelisted) ===================

(If an entry is included in the fixlist, the registry item will be restored to default or removed. The file will not be moved.)

HKLM\...\Run: [RTHDVCPL] => C:\Program Files\Realtek\Audio\HDA\RtkNGUI64.exe [8911872 2016-10-15] (Realtek Semiconductor Corp. -> Realtek Semiconductor)
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
HKLM\Software\Policies\...\system: [EnableActivityFeed] 0
HKLM\Software\Policies\...\system: [PublishUserActivities] 0
HKLM\Software\Policies\...\system: [UploadUserActivities] 0
HKLM\Software\Policies\...\system: [DontDisplayNetworkSelectionUI] 1
HKLM\Software\Policies\...\system: [DisableAcrylicBackgroundOnLogon] 1
HKU\S-1-5-21-3588770567-3402981821-2936807127-500\...\Policies\Explorer: [NoAutoTrayNotify] 1
HKLM\Software\Microsoft\Active Setup\Installed Components: [{8A69D345-D564-463c-AFF1-A69D9E530F96}] -> C:\Program Files\Google\Chrome\Application\113.0.5672.127\Installer\chrmstp.exe [2023-05-23] (Google LLC -> Google LLC)
IFEO\MusNotification.exe: [Debugger] cmd.exe

==================== Scheduled Tasks (Whitelisted) =================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

Task: {0D878CBE-CDA5-42F4-82BF-F16C3F160020} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cleanup => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2304.8-0\MpCmdRun.exe [1650024 2023-05-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {5AD38F3C-C89E-4D56-B678-14019B62A92B} - System32\Tasks\GoogleUpdateTaskMachineUA{1CD65F52-0D3D-4BAD-B5A8-7DA82AFC4072} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162072 2023-05-23] (Google LLC -> Google LLC)
Task: {6932DB84-A20C-4C97-A89F-680F47875EAD} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Cache Maintenance => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2304.8-0\MpCmdRun.exe [1650024 2023-05-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {B483BBC9-7A4D-4854-A052-12FC8E723B1A} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Verification => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2304.8-0\MpCmdRun.exe [1650024 2023-05-23] (Microsoft Windows Publisher -> Microsoft Corporation)
Task: {DBDB2ACB-001A-4489-82A6-6B635F93F0E9} - System32\Tasks\GoogleUpdateTaskMachineCore{6C4CD613-0D78-463C-913E-20544D3C761B} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162072 2023-05-23] (Google LLC -> Google LLC)
Task: {DED7D22C-2FD9-4DE6-8B78-D8AFF30FB9F5} - System32\Tasks\Microsoft\Windows\Windows Defender\Windows Defender Scheduled Scan => C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2304.8-0\MpCmdRun.exe [1650024 2023-05-23] (Microsoft Windows Publisher -> Microsoft Corporation)

(If an entry is included in the fixlist, the task (.job) file will be moved. The file which is running by the task will not be moved.)


==================== Internet (Whitelisted) ====================

(If an item is included in the fixlist, if it is a registry item it will be removed or restored to default.)

Tcpip\Parameters: [DhcpNameServer] 192.168.0.1
Tcpip\..\Interfaces\{e982d8cf-f376-43df-bb93-d11758ea9bd5}: [DhcpNameServer] 192.168.0.1
HKLM\SOFTWARE\Policies\Microsoft\Internet Explorer: Restriction <==== ATTENTION

Edge:
=======
Edge Profile: C:\Users\HP\AppData\Local\Microsoft\Edge\User Data\Default [2023-05-23]

Chrome:
=======
CHR Profile: C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default [2023-05-23]
CHR HomePage: Default -> hxxp://www.seznam.cz/
CHR StartupUrls: Default -> "hxxp://www.seznam.cz/"
CHR Extension: (Platby Internetového obchodu Chrome) - C:\Users\HP\AppData\Local\Google\Chrome\User Data\Default\Extensions\nmmhkkegccagdldgiimedpiccmgmieda [2023-05-23]

==================== Services (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 Sense; C:\Program Files\Windows Defender Advanced Threat Protection\MsSense.exe [336256 2023-05-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R3 WdNisSvc; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2304.8-0\NisSrv.exe [3216064 2023-05-23] (Microsoft Windows Publisher -> Microsoft Corporation)
R2 WinDefend; C:\ProgramData\Microsoft\Windows Defender\platform\4.18.2304.8-0\MsMpEng.exe [133544 2023-05-23] (Microsoft Windows Publisher -> Microsoft Corporation)

===================== Drivers (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

S3 BthA2dp; C:\Windows\System32\drivers\BthA2dp.sys [279040 2019-12-07] (Microsoft Corporation) [File not signed]
S3 BthHFEnum; C:\Windows\System32\drivers\bthhfenum.sys [144896 2019-12-07] (Microsoft Corporation) [File not signed]
S0 WdBoot; C:\Windows\System32\drivers\wd\WdBoot.sys [49616 2023-05-23] (Microsoft Windows Early Launch Anti-malware Publisher -> Microsoft Corporation)
R0 WdFilter; C:\Windows\System32\drivers\wd\WdFilter.sys [498944 2023-05-23] (Microsoft Windows -> Microsoft Corporation)
R3 WdNisDrv; C:\Windows\System32\drivers\wd\WdNisDrv.sys [99608 2023-05-23] (Microsoft Windows -> Microsoft Corporation)
R3 WirelessButtonDriver64; C:\Windows\System32\drivers\WirelessButtonDriver64.sys [40104 2022-06-17] (HP Inc. -> HP)

==================== NetSvcs (Whitelisted) ===================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)


==================== One month (created) (Whitelisted) =========

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-05-23 19:24 - 2023-05-23 19:30 - 000016251 _____ C:\Users\HP\Desktop\Addition.txt
2023-05-23 19:16 - 2023-05-23 19:43 - 000008161 _____ C:\Users\HP\Desktop\FRST.txt
2023-05-23 19:15 - 2023-05-23 19:43 - 000000000 ____D C:\FRST
2023-05-23 19:04 - 2023-05-23 19:04 - 002382848 _____ (Farbar) C:\Users\HP\Desktop\FRST64.exe
2023-05-23 18:36 - 2023-05-23 18:36 - 000000671 _____ C:\Users\HP\Desktop\XAMPP Control Panel.lnk
2023-05-23 18:27 - 2023-05-23 18:27 - 000000000 ____D C:\Users\HP\AppData\Roaming\Synaptics
2023-05-23 18:27 - 2023-05-23 18:27 - 000000000 ____D C:\ProgramData\Synaptics
2023-05-23 18:23 - 2023-05-23 18:23 - 000000000 ____D C:\Windows\system32\Drivers\mde
2023-05-23 18:21 - 2023-05-23 18:21 - 000000000 ____D C:\Users\HP\AppData\Local\D3DSCache
2023-05-23 18:19 - 2023-05-23 18:19 - 000000000 ____D C:\ProgramData\Microsoft\Windows\Start Menu\Programs\XAMPP
2023-05-23 18:19 - 2023-05-23 17:23 - 000000000 ____D C:\Windows\Panther
2023-05-23 18:07 - 2023-05-23 18:21 - 000000000 ____D C:\xampp
2023-05-23 17:56 - 2023-05-23 17:56 - 000000000 ___HD C:\$WinREAgent
2023-05-23 17:46 - 2023-05-23 17:50 - 000000000 ____D C:\Windows\system32\MRT
2023-05-23 17:45 - 2023-05-23 17:45 - 000000000 ____D C:\Program Files\Microsoft Update Health Tools
2023-05-23 17:43 - 2023-05-23 17:43 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_SynTP_01011.Wdf
2023-05-23 17:43 - 2023-05-23 17:43 - 000000000 ____H C:\Windows\system32\Drivers\Msft_Kernel_Smb_driver_AMDASF_01011.Wdf
2023-05-23 17:43 - 2023-05-23 17:43 - 000000000 ____D C:\Program Files\Synaptics
2023-05-23 17:43 - 2017-08-18 02:23 - 000053848 _____ (Synaptics Incorporated) C:\Windows\system32\Drivers\Smb_driver_AMDASF.sys
2023-05-23 17:41 - 2023-05-23 17:41 - 000021910 _____ C:\Windows\system32\Drivers\rtkhdasetting.zip
2023-05-23 17:41 - 2023-05-23 17:41 - 000001844 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\DTS Audio Control.lnk
2023-05-23 17:41 - 2023-05-23 17:41 - 000000000 ____D C:\Windows\SysWOW64\RTCOM
2023-05-23 17:41 - 2023-05-23 17:41 - 000000000 ____D C:\Windows\system32\SRSLabs
2023-05-23 17:41 - 2023-05-23 17:41 - 000000000 ____D C:\ProgramData\SRS Labs
2023-05-23 17:41 - 2023-05-23 17:41 - 000000000 ____D C:\Program Files\Realtek
2023-05-23 17:40 - 2023-05-23 18:34 - 000000000 ____D C:\Users\HP\AppData\Roaming\Microsoft\MMC
2023-05-23 17:40 - 2023-05-23 17:40 - 000000000 ____D C:\Users\HP\AppData\Local\PlaceholderTileLogoFolder
2023-05-23 17:40 - 2016-10-15 00:35 - 003320672 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkApi64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 003171840 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RltkAPO64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 002739248 _____ (DTS, Inc.) C:\Windows\system32\sltech64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 002231704 _____ (DTS, Inc.) C:\Windows\system32\slcnt64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 001456472 _____ (Synopsys, Inc.) C:\Windows\system32\SRRPTR64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 001381120 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTCOM64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 001059680 _____ (DTS, Inc.) C:\Windows\system32\sl3apo64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 001019848 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDHF64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000881728 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SEHDHF32.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000874488 _____ (Sound Research, Corp.) C:\Windows\system32\SEHDRA64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000866584 _____ (Sound Research, Corp.) C:\Windows\system32\SECOMN64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000736872 _____ (Sound Research, Corp.) C:\Windows\SysWOW64\SECOMN32.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000704696 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtDataProc64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000545824 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSTSX64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000512240 _____ (Sound Research, Corp.) C:\Windows\system32\SEAPO64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000479992 _____ (Synopsys, Inc.) C:\Windows\system32\SRAPO64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000399464 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEP64A.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000393488 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000355496 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtlCPAPI64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000352896 _____ (Synopsys, Inc.) C:\Windows\SysWOW64\SRCOM.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000352896 _____ (Synopsys, Inc.) C:\Windows\system32\SRCOM.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000333288 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DAA64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000333280 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RP3DHT64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000225504 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEED64A.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000203440 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCfg64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000176472 _____ (SRS Labs, Inc.) C:\Windows\system32\SRSWOW64.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000120712 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEL64A.dll
2023-05-23 17:40 - 2016-10-15 00:35 - 000097976 _____ (Dolby Laboratories, Inc.) C:\Windows\system32\RTEEG64A.dll
2023-05-23 17:40 - 2016-10-15 00:31 - 005346312 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\Drivers\RTKVHD64.sys
2023-05-23 17:40 - 2016-10-15 00:31 - 003212296 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtPgEx64.dll
2023-05-23 17:40 - 2016-10-15 00:31 - 002903800 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RTSnMg64.cpl
2023-05-23 17:40 - 2016-10-15 00:31 - 002081792 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RCoInstII64.dll
2023-05-23 17:40 - 2016-10-15 00:31 - 000267568 _____ (TODO: <Company name>) C:\Windows\system32\slprp64.dll
2023-05-23 17:40 - 2016-10-15 00:31 - 000032392 _____ (Realtek Semiconductor Corp.) C:\Windows\system32\RtkCoLDR64.dll
2023-05-23 17:39 - 2016-10-15 00:35 - 001641056 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64APO.dll
2023-05-23 17:39 - 2016-10-15 00:35 - 001551336 _____ (Conexant Systems Inc.) C:\Windows\system32\CX64Proxy.dll
2023-05-23 17:39 - 2016-10-15 00:35 - 000588632 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAC64.dll
2023-05-23 17:39 - 2016-10-15 00:35 - 000451264 _____ (Conexant Systems, Inc.) C:\Windows\system32\CAF64APO2.dll
2023-05-23 17:39 - 2016-10-15 00:35 - 000128512 _____ (Andrea Electronics Corporation) C:\Windows\system32\AERTAR64.dll
2023-05-23 17:39 - 2016-10-15 00:35 - 000122232 _____ (Conexant Systems, Inc.) C:\Windows\system32\Caf64api.dll
2023-05-23 17:39 - 2016-10-15 00:31 - 000131024 _____ (Real Sound Lab SIA) C:\Windows\system32\CONEQMSAPOGUILibrary.dll
2023-05-23 17:39 - 2016-10-03 22:38 - 000005604 _____ C:\Windows\system32\cxapo.lncs
2023-05-23 17:39 - 2016-10-03 22:38 - 000000736 _____ C:\Windows\system32\cxapo.prop
2023-05-23 17:38 - 2023-05-23 17:38 - 000002319 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome.lnk
2023-05-23 17:38 - 2023-05-23 17:38 - 000002278 _____ C:\Users\Public\Desktop\Google Chrome.lnk
2023-05-23 17:38 - 2023-05-23 17:38 - 000000000 ____D C:\Users\HP\AppData\Local\Google
2023-05-23 17:38 - 2023-05-23 17:38 - 000000000 ____D C:\Program Files\Google
2023-05-23 17:37 - 2023-05-23 19:42 - 000000000 ____D C:\Program Files (x86)\Google
2023-05-23 17:37 - 2023-05-23 17:37 - 000003844 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineUA{1CD65F52-0D3D-4BAD-B5A8-7DA82AFC4072}
2023-05-23 17:37 - 2023-05-23 17:37 - 000003720 _____ C:\Windows\system32\Tasks\GoogleUpdateTaskMachineCore{6C4CD613-0D78-463C-913E-20544D3C761B}
2023-05-23 17:35 - 2023-05-23 17:35 - 000000000 ____D C:\Users\HP\AppData\Local\Comms
2023-05-23 17:35 - 2023-05-23 17:35 - 000000000 ____D C:\Program Files\Broadcom
2023-05-23 17:35 - 2017-07-13 03:16 - 011794376 _____ (Broadcom Corp) C:\Windows\system32\Drivers\bcmwl63a.sys
2023-05-23 17:34 - 2023-05-23 17:35 - 000000000 ____D C:\Windows\Minidump
2023-05-23 17:34 - 2023-05-23 17:34 - 591053023 _____ C:\Windows\MEMORY.DMP
2023-05-23 17:34 - 2023-05-23 17:34 - 001032444 _____ C:\Windows\Minidump\052323-13890-01.dmp
2023-05-23 17:34 - 2015-10-29 18:57 - 000082704 _____ (Advanced Micro Devices, Inc.) C:\Windows\system32\Drivers\amdkmpfd.sys
2023-05-23 17:33 - 2023-05-23 18:35 - 000065536 _____ C:\Windows\system32\spu_storage.bin
2023-05-23 17:33 - 2023-05-23 17:33 - 000000000 ____D C:\Program Files\Common Files\ATI Technologies
2023-05-23 17:33 - 2023-05-23 17:33 - 000000000 _____ C:\Windows\ativpsrm.bin
2023-05-23 17:32 - 2023-05-23 18:42 - 000000000 ____D C:\Users\HP\AppData\Roaming\Microsoft\Spelling
2023-05-23 17:32 - 2023-05-23 18:19 - 000000000 ____D C:\ProgramData\Package Cache
2023-05-23 17:32 - 2023-05-23 17:32 - 000000000 ____D C:\Program Files (x86)\AMD
2023-05-23 17:31 - 2023-05-23 17:32 - 000000000 ____D C:\Program Files\AMD
2023-05-23 17:30 - 2023-05-23 18:43 - 001605602 _____ C:\Windows\system32\PerfStringBackup.INI
2023-05-23 17:30 - 2023-05-23 17:35 - 000000000 ____D C:\SWSetup
2023-05-23 17:30 - 2023-05-23 15:09 - 409094744 _____ (HP Inc.) C:\Users\HP\Desktop\sp74716.exe
2023-05-23 17:29 - 2023-05-23 17:29 - 000000000 ____D C:\Users\HP\AppData\Local\Publishers
2023-05-23 17:28 - 2023-05-23 18:40 - 000000000 ____D C:\Users\HP\AppData\Local\Packages
2023-05-23 17:28 - 2023-05-23 18:33 - 000000000 ____D C:\Users\HP
2023-05-23 17:28 - 2023-05-23 17:29 - 000000000 ____D C:\Users\HP\AppData\Roaming\Microsoft\Windows
2023-05-23 17:28 - 2023-05-23 17:29 - 000000000 ____D C:\Users\HP\AppData\Local\ConnectedDevicesPlatform
2023-05-23 17:28 - 2023-05-23 17:28 - 000000020 ___SH C:\Users\HP\ntuser.ini
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\Šablony
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\Soubory cookie
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\Poslední
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\Okolní tiskárny
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\Okolní síť
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\Nabídka Start
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\Dokumenty
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\Documents\Obrázky
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\Documents\Hudba
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\Documents\Filmy
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\Data aplikací
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 _SHDL C:\Users\HP\AppData\Local\Data aplikací
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 ___SD C:\Users\HP\AppData\Roaming\Microsoft\SystemCertificates
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 ___SD C:\Users\HP\AppData\Roaming\Microsoft\Protect
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 ___SD C:\Users\HP\AppData\Roaming\Microsoft\Crypto
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 ___SD C:\Users\HP\AppData\Roaming\Microsoft\Credentials
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 ___RD C:\Users\HP\3D Objects
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 ____D C:\Users\HP\AppData\Roaming\Microsoft\Vault
2023-05-23 17:28 - 2023-05-23 17:28 - 000000000 ____D C:\Users\HP\AppData\Roaming\Adobe
2023-05-23 17:26 - 2023-05-23 17:26 - 000000000 ____D C:\Windows\CSC
2023-05-23 17:25 - 2023-05-23 18:40 - 000000000 ____D C:\ProgramData\Packages
2023-05-23 17:25 - 2023-05-23 17:28 - 000000000 __RHD C:\Users\Public\AccountPictures
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Public\Documents\Obrázky
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Public\Documents\Hudba
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Public\Documents\Filmy
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\Šablony
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\Soubory cookie
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\Poslední
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\Okolní tiskárny
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\Okolní síť
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\Nabídka Start
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\Dokumenty
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\Documents\Obrázky
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\Documents\Hudba
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\Documents\Filmy
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\Data aplikací
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\AppData\Roaming\Microsoft\Windows\Start Menu\Programy
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Users\Default\AppData\Local\Data aplikací
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\ProgramData\Šablony
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\ProgramData\Plocha
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\ProgramData\Nabídka Start
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\ProgramData\Microsoft\Windows\Start Menu\Programy
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\ProgramData\Dokumenty
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\ProgramData\Data aplikací
2023-05-23 17:24 - 2023-05-23 17:24 - 000000000 _SHDL C:\Documents and Settings
2023-05-23 17:20 - 2023-05-23 18:35 - 000000006 ____H C:\Windows\Tasks\SA.DAT
2023-05-23 17:20 - 2023-05-23 18:30 - 000000000 ____D C:\Windows\system32\Drivers\wd
2023-05-23 17:20 - 2023-05-23 17:20 - 000003584 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineUA
2023-05-23 17:20 - 2023-05-23 17:20 - 000003460 _____ C:\Windows\system32\Tasks\MicrosoftEdgeUpdateTaskMachineCore
2023-05-23 17:20 - 2023-05-23 17:20 - 000002436 _____ C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Edge.lnk
2023-05-23 17:20 - 2023-05-23 17:20 - 000000000 ____H C:\Windows\system32\Drivers\Msft_User_WpdFs_01_11_00.Wdf
2023-05-23 17:19 - 2023-05-23 18:35 - 000008192 ___SH C:\DumpStack.log.tmp
2023-05-23 17:19 - 2023-05-23 18:25 - 000258096 _____ C:\Windows\system32\FNTCACHE.DAT
2023-05-23 17:19 - 2023-05-23 17:34 - 000000000 ____D C:\Windows\system32\SleepStudy
2023-05-23 17:19 - 2023-05-23 17:19 - 000000000 ____D C:\Windows\ServiceProfiles

==================== One month (modified) ==================

(If an entry is included in the fixlist, the file/folder will be moved.)

2023-05-23 19:15 - 2019-12-07 11:13 - 000000000 ____D C:\Windows\INF
2023-05-23 18:47 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\regid.1991-06.com.microsoft
2023-05-23 18:43 - 2019-12-07 16:43 - 000683426 _____ C:\Windows\system32\perfh005.dat
2023-05-23 18:43 - 2019-12-07 16:43 - 000137206 _____ C:\Windows\system32\perfc005.dat
2023-05-23 18:42 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\CbsTemp
2023-05-23 18:40 - 2019-12-07 11:14 - 000000000 ___HD C:\Program Files\WindowsApps
2023-05-23 18:40 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\AppReadiness
2023-05-23 18:35 - 2019-12-07 11:03 - 000524288 _____ C:\Windows\system32\config\BBI
2023-05-23 18:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lv-LV
2023-05-23 18:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\lt-LT
2023-05-23 18:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\et-EE
2023-05-23 18:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\es-MX
2023-05-23 18:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lv-LV
2023-05-23 18:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\lt-LT
2023-05-23 18:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\et-EE
2023-05-23 18:32 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\es-MX
2023-05-23 18:29 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows Defender
2023-05-23 18:23 - 2019-12-07 16:47 - 000000000 ____D C:\Program Files\Windows Defender Advanced Threat Protection
2023-05-23 18:23 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\SysWOW64\cs
2023-05-23 18:23 - 2019-12-07 16:43 - 000000000 ____D C:\Windows\system32\cs
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ___SD C:\Windows\system32\UNP
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\ImmersiveControlPanel
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\WinMetadata
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\oobe
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SysWOW64\Dism
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemResources
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\SystemApps
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinMetadata
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\setup
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\SecureBootUpdates
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\PerceptionSimulation
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\oobe
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\migwiz
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\Dism
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\DDFs
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ShellExperiences
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\Provisioning
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\PolicyDefinitions
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\bcastdvr
2023-05-23 18:23 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Common Files\System
2023-05-23 18:21 - 2019-12-07 11:15 - 000208384 _____ (Microsoft Corporation) C:\Windows\SysWOW64\msclmd.dll
2023-05-23 18:21 - 2019-12-07 11:14 - 000232448 _____ (Microsoft Corporation) C:\Windows\system32\msclmd.dll
2023-05-23 18:21 - 2019-12-07 11:03 - 000000000 ____D C:\Windows\servicing
2023-05-23 18:19 - 2019-12-07 11:14 - 000028672 _____ C:\Windows\system32\config\BCD-Template
2023-05-23 17:38 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\ServiceState
2023-05-23 17:35 - 2019-12-07 11:14 - 000000000 ___RD C:\Windows\PrintDialog
2023-05-23 17:28 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\system32\WinBioDatabase
2023-05-23 17:26 - 2019-12-07 16:45 - 000000000 ____D C:\Windows\system32\FxsTmp
2023-05-23 17:26 - 2019-12-07 11:14 - 000000000 ____D C:\ProgramData\USOPrivate
2023-05-23 17:24 - 2019-12-07 11:14 - 000000000 ____D C:\Program Files\Windows NT
2023-05-23 17:20 - 2019-12-07 11:14 - 000000000 ____D C:\Windows\appcompat
2023-05-23 17:20 - 2019-12-07 11:03 - 000032768 _____ C:\Windows\system32\config\ELAM

==================== SigCheck ============================

(There is no automatic fix for files that do not pass verification.)

==================== End of FRST.txt ========================


Addition:

Additional scan result of Farbar Recovery Scan Tool (x64) Version: 23-05-2023
Ran by HP (23-05-2023 19:45:20)
Running from C:\Users\HP\Desktop
Microsoft Windows 10 Pro Version 22H2 19045.2965 (X64) (2023-05-23 15:24:23)
Boot Mode: Normal
==========================================================


==================== Accounts: =============================


(If an entry is included in the fixlist, it will be removed.)

DefaultAccount (S-1-5-21-3588770567-3402981821-2936807127-503 - Limited - Disabled)
Guest (S-1-5-21-3588770567-3402981821-2936807127-501 - Limited - Disabled)
HP (S-1-5-21-3588770567-3402981821-2936807127-500 - Administrator - Enabled) => C:\Users\HP
WDAGUtilityAccount (S-1-5-21-3588770567-3402981821-2936807127-504 - Limited - Disabled)

==================== Security Center ========================

(If an entry is included in the fixlist, it will be removed.)

AV: Windows Defender (Enabled - Up to date) {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}

==================== Installed Programs ======================

(Only the adware programs with "Hidden" flag could be added to the fixlist to unhide them. The adware programs should be uninstalled manually.)

AMD Catalyst Install Manager (HKLM\...\{A30D3EA3-B90A-DDD5-949E-6DDE67E64FE6}) (Version: 8.0.916.0 - Advanced Micro Devices, Inc.)
Broadcom 802.11 Network Adapter (HKLM\...\Broadcom 802.11 Network Adapter) (Version: 7.35.333.0 - Broadcom Corporation)
Google Chrome (HKLM-x32\...\Google Chrome) (Version: 113.0.5672.127 - Google LLC)
Microsoft Edge (HKLM-x32\...\Microsoft Edge) (Version: 92.0.902.67 - Microsoft Corporation)
Microsoft Update Health Tools (HKLM\...\{BB052C53-34CB-42DE-AF41-66FDFCEEC868}) (Version: 3.72.0.0 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x64) - 11.0.50727 (HKLM-x32\...\{15134cb0-b767-4960-a911-f2d16ae54797}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 Redistributable (x86) - 11.0.50727 (HKLM-x32\...\{22154f09-719a-4619-bb71-5b3356999fbf}) (Version: 11.0.50727.1 - Microsoft Corporation)
Microsoft Visual C++ 2012 x64 Additional Runtime - 11.0.50727 (HKLM\...\{AC53FC8B-EE18-3F9C-9B59-60937D0B182C}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x64 Minimum Runtime - 11.0.50727 (HKLM\...\{A2CB1ACB-94A2-32BA-A15E-7D80319F7589}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Additional Runtime - 11.0.50727 (HKLM-x32\...\{FDB30193-FDA0-3DAA-ACCA-A75EEFE53607}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2012 x86 Minimum Runtime - 11.0.50727 (HKLM-x32\...\{2F73A7B2-E50E-39A6-9ABC-EF89E4C62E36}) (Version: 11.0.50727 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 Redistributable (x64) - 12.0.30501 (HKLM-x32\...\{050d4fc8-5d48-4b8f-8972-47c82c46020f}) (Version: 12.0.30501.0 - Microsoft Corporation)
Microsoft Visual C++ 2013 x64 Additional Runtime - 12.0.21005 (HKLM\...\{929FBD26-9020-399B-9A7A-751D61F0B942}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2013 x64 Minimum Runtime - 12.0.21005 (HKLM\...\{A749D8E6-B613-3BE3-8F5F-045C84EBA29B}) (Version: 12.0.21005 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2015-2019 Redistributable (x64) - 14.28.29325 (HKLM-x32\...\{33628a12-6787-4b9f-95a1-92449f69fae0}) (Version: 14.28.29325.2 - Microsoft Corporation)
Microsoft Visual C++ 2019 X64 Additional Runtime - 14.28.29325 (HKLM\...\{26AF0C35-55EC-4025-8D83-349E8FB1419F}) (Version: 14.28.29325 - Microsoft Corporation) Hidden
Microsoft Visual C++ 2019 X64 Minimum Runtime - 14.28.29325 (HKLM\...\{7D0362D5-C699-4403-BC09-0C1DAD1D93AB}) (Version: 14.28.29325 - Microsoft Corporation) Hidden
Realtek High Definition Audio Driver (HKLM-x32\...\{F132AF7F-7BCA-4EDE-8A7C-958108FE7DBC}) (Version: 6.0.1.7944 - Realtek Semiconductor Corp.)
Synaptics Pointing Device Driver (HKLM\...\SynTPDeinstKey) (Version: 19.3.31.31 - Synaptics Incorporated)
XAMPP (HKLM\...\xampp) (Version: 8.2.4-0 - Apache Friends)

==================== Custom CLSID (Whitelisted): ==============

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\localserver32 -> C:\Users\HP\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\FileCoAuth.exe => No File
CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{C591CFEA-E432-495d-A0BE-58E4CCD87B17}\Shell\Open\Command -> C:\Program Files\Synaptics\SynTP\SynTPCpl.dll (Synaptics Incorporated -> Synaptics Incorporated)

==================== Codecs (Whitelisted) ====================

==================== Shortcuts & WMI ========================

==================== Loaded Modules (Whitelisted) =============

==================== Alternate Data Streams (Whitelisted) ========

==================== Safe Mode (Whitelisted) ==================

==================== Association (Whitelisted) =================

==================== Internet Explorer (Whitelisted) ==========


==================== Hosts content: =========================

(If needed Hosts: directive could be included in the fixlist to reset Hosts.)

2019-12-07 11:14 - 2019-12-07 11:12 - 000000824 _____ C:\Windows\system32\drivers\etc\hosts

==================== Other Areas ===========================

(Currently there is no automatic fix for this section.)

HKLM\System\CurrentControlSet\Control\Session Manager\Environment\\Path -> C:\Program Files\Broadcom\Broadcom 802.11 Network Adapter;;%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;%SYSTEMROOT%\System32\WindowsPowerShell\v1.0\;%SYSTEMROOT%\System32\OpenSSH\
HKU\S-1-5-21-3588770567-3402981821-2936807127-500\Control Panel\Desktop\\Wallpaper -> C:\Users\HP\Downloads\4k-Car-Cool-Backgrounds-Wallpapers.jpg
DNS Servers: 192.168.0.1
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System => (ConsentPromptBehaviorAdmin: 0) (ConsentPromptBehaviorUser: 3) (EnableLUA: 1)
Windows Firewall is enabled.

==================== MSCONFIG/TASK MANAGER disabled items ==

(If an entry is included in the fixlist, it will be removed.)

HKLM\...\StartupApproved\Run: => "SecurityHealth"
HKLM\...\StartupApproved\Run: => "RTHDVCPL"

==================== FirewallRules (Whitelisted) ================

(If an entry is included in the fixlist, it will be removed from the registry. The file will not be moved unless listed separately.)

FirewallRules: [{06B8C954-BF42-4C51-AFA0-8207D7BCAE93}] => (Allow) C:\Program Files\Google\Chrome\Application\chrome.exe (Google LLC -> Google LLC)
FirewallRules: [TCP Query User{C8F99759-AD8E-4CFC-BC93-851049FFD93A}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe (Apache Software Foundation) [File not signed]
FirewallRules: [UDP Query User{6862B68E-9F6B-48F1-B633-D5A850E6536B}C:\xampp\apache\bin\httpd.exe] => (Allow) C:\xampp\apache\bin\httpd.exe (Apache Software Foundation) [File not signed]
FirewallRules: [TCP Query User{E433DC7F-CD7F-497F-93A2-C82D9726AE0F}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe (MariaDB Corporation Ab -> )
FirewallRules: [UDP Query User{1670CE74-70E5-4A17-9907-1621C2E3DFC6}C:\xampp\mysql\bin\mysqld.exe] => (Allow) C:\xampp\mysql\bin\mysqld.exe (MariaDB Corporation Ab -> )

==================== Restore Points =========================

ATTENTION: System Restore is disabled (Total:118.61 GB) (Free:73.57 GB) (62%)

==================== Faulty Device Manager Devices ============

Name:
Description:
Class Guid:
Manufacturer:
Service:
Problem: : The drivers for this device are not installed. (Code 28)
Resolution: To install the drivers for this device, click "Update Driver", which starts the Hardware Update wizard.


==================== Event log errors: ========================

Application errors:
==================
Error: (05/23/2023 07:01:45 PM) (Source: Application Hang) (EventID: 1002) (User: )
Description: Program SystemSettings.exe verze 10.0.19041.2788 přestal spolupracovat s Windows a byl ukončen. Pokud chcete zjistit, jestli je k dispozici více informací o tomto problému, vyhledejte historii problému na ovládacím panelu Zabezpečení a údržba.

ID procesu: 50c

Čas spuštění: 01d98d97d24b87a3

Čas ukončení: 4294967295

Cesta k aplikaci: C:\Windows\ImmersiveControlPanel\SystemSettings.exe

ID hlášení: 599c8b93-745e-4142-82a2-60f3ea4962e4

Úplný název balíčku s chybou: windows.immersivecontrolpanel_10.0.2.1000_neutral_neutral_cw5n1h2txyewy

ID aplikace relativní podle balíčku s chybou: microsoft.windows.immersivecontrolpanel

Typ zablokování: Navigation

Error: (05/23/2023 06:22:35 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x55c4071f
Název chybujícího modulu: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x55c4071f
Kód výjimky: 0xc000041d
Posun chyby: 0x00000000000425c6
ID chybujícího procesu: 0x7d8
Čas spuštění chybující aplikace: 0x01d98d8c14232b45
Cesta k chybující aplikaci: C:\Windows\system32\atieclxx.exe
Cesta k chybujícímu modulu: C:\Windows\system32\atieclxx.exe
ID zprávy: cd250054-925f-49e6-9d54-0d99e5c862e9
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (05/23/2023 06:22:33 PM) (Source: Application Error) (EventID: 1000) (User: )
Description: Název chybující aplikace: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x55c4071f
Název chybujícího modulu: atieclxx.exe, verze: 6.14.11.1199, časové razítko: 0x55c4071f
Kód výjimky: 0xc0000005
Posun chyby: 0x00000000000425c6
ID chybujícího procesu: 0x7d8
Čas spuštění chybující aplikace: 0x01d98d8c14232b45
Cesta k chybující aplikaci: C:\Windows\system32\atieclxx.exe
Cesta k chybujícímu modulu: C:\Windows\system32\atieclxx.exe
ID zprávy: 78e2c8d7-da8d-4768-8137-100ed9194882
Úplný název chybujícího balíčku:
ID aplikace související s chybujícím balíčkem:

Error: (05/23/2023 05:34:53 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80072EE7
Argument příkazového řádku:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;NotificationInterval=1440;Trigger=UserLogon;SessionId=1

Error: (05/23/2023 05:34:52 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Získání licence koncového uživatele se nezdařilo. hr=0x80072EE7
ID SKU=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c

Error: (05/23/2023 05:34:52 PM) (Source: Software Protection Platform Service) (EventID: 8200) (User: )
Description: Podrobnosti chyby získávání licence
hr=0x80072EE7

Error: (05/23/2023 05:28:58 PM) (Source: Software Protection Platform Service) (EventID: 8198) (User: )
Description: Aktivace licence (slui.exe) se nezdařila s následujícím kódem chyby:
hr=0x80072EE7
Argument příkazového řádku:
RuleId=31e71c49-8da7-4a2f-ad92-45d98a1c79ba;Action=AutoActivate;AppId=55c92734-d682-4d71-983e-d6ec3f16059f;SkuId=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c;NotificationInterval=1440;Trigger=UserLogon;SessionId=3

Error: (05/23/2023 05:28:57 PM) (Source: Software Protection Platform Service) (EventID: 1014) (User: )
Description: Získání licence koncového uživatele se nezdařilo. hr=0x80072EE7
ID SKU=4de7cb65-cdf1-4de9-8ae8-e3cce27b9f2c


System errors:
=============
Error: (05/23/2023 06:26:34 PM) (Source: Microsoft-Windows-Eventlog) (EventID: 30) (User: NT AUTHORITY)
Description: Služba protokolování událostí zjistila chybu (5) při povolení vydavatele {a70ff94f-570b-4979-ba5c-e59c9feab61b} pro kanál Microsoft-Windows-WinINet/Operational. Tato chyba neovlivní funkci kanálu, ale ovlivní možnost vydavatele odesílat události do tohoto kanálu. Jednou z běžných příčin této chyby je, že zprostředkovatel používá zabezpečení zprostředkovatele ETW a neudělil oprávnění k povolení pro identitu služby Event Log.

Error: (05/23/2023 05:34:56 PM) (Source: BugCheck) (EventID: 1001) (User: )
Description: Počítač byl restartován z procesu kontroly chyb. Kontrola chyb: 0x0000013a (0x0000000000000008, 0xffffa38ba1e02100, 0xffffa38ba7046490, 0x0000000000000000). Výpis byl uložen do: C:\Windows\MEMORY.DMP. ID hlášení: 683a94aa-adcf-460d-be18-d007e65f3885

Error: (05/23/2023 05:34:35 PM) (Source: EventLog) (EventID: 6008) (User: )
Description: Předchozí vypnutí systému (17:24:10, ‎23.‎05.‎2023) bylo neočekávané.

Error: (05/23/2023 05:23:38 PM) (Source: Service Control Manager) (EventID: 7001) (User: )
Description: Služba Služba platformy připojených zařízení závisí na službě Zprostředkovatel síťového připojení, která neuspěla při spuštění v důsledku následující chyby:
Zařízení připojené k systému nefunguje.

Error: (05/23/2023 05:23:38 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Zprostředkovatel síťového připojení byla ukončena s následující chybou:
Zařízení připojené k systému nefunguje.

Error: (05/23/2023 05:23:38 PM) (Source: DCOM) (EventID: 10010) (User: NT AUTHORITY)
Description: Server {A47979D2-C419-11D9-A5B4-001185AD2B89} se v daném časovém limitu neregistroval u služby DCOM.

Error: (05/23/2023 05:22:21 PM) (Source: Service Control Manager) (EventID: 7030) (User: )
Description: Služba Rozšíření a oznámení tiskárny je označena jako interaktivní služba. Avšak systém je nakonfigurován tak, že neumožňuje použití interaktivní služby. Tato služba nebude fungovat správně.

Error: (05/23/2023 05:22:07 PM) (Source: Service Control Manager) (EventID: 7023) (User: )
Description: Služba Služba seznamu sítí byla ukončena s následující chybou:
Zařízení není připraveno.


==================== Memory info ===========================

BIOS: Insyde F.24 10/24/2017
Motherboard: HP 80CC
Processor: AMD A8-7410 APU with AMD Radeon R5 Graphics
Percentage of memory in use: 26%
Total physical RAM: 15305.01 MB
Available physical RAM: 11284.02 MB
Total Virtual: 18121.01 MB
Available Virtual: 13962.49 MB

==================== Drives ================================

Drive c: () (Fixed) (Total:118.61 GB) (Free:73.57 GB) (Model: TOSHIBA THNSFC128GBSJ) NTFS
Drive d: (Dokumenty) (Fixed) (Total:238.47 GB) (Free:228.2 GB) (Model: HFS256G32MND-2200A) NTFS

\\?\Volume{cb033ae1-0dcb-4e28-a5d3-c24d31cd6b94}\ () (Fixed) (Total:0.52 GB) (Free:0.08 GB) NTFS
\\?\Volume{8723206b-00d2-43d7-89e3-5c680e07f0d7}\ () (Fixed) (Total:0.09 GB) (Free:0.07 GB) FAT32

==================== MBR & Partition Table ====================

==========================================================
Disk: 0 (Protective MBR) (Size: 119.2 GB) (Disk ID: 00000000)

Partition: GPT.

==========================================================
Disk: 1 (Protective MBR) (Size: 238.5 GB) (Disk ID: 00000000)

Partition: GPT.

==================== End of Addition.txt =======================

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118289
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Notebook HP - neustálé vytížení CPU

#2 Příspěvek od Rudy »

Zdravím!
Otevřte poznámkový blok a zkopírujte do něj:
Start

CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
Task: {5AD38F3C-C89E-4D56-B678-14019B62A92B} - System32\Tasks\GoogleUpdateTaskMachineUA{1CD65F52-0D3D-4BAD-B5A8-7DA82AFC4072} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162072 2023-05-23] (Google LLC -> Google LLC)
Task: {DBDB2ACB-001A-4489-82A6-6B635F93F0E9} - System32\Tasks\GoogleUpdateTaskMachineCore{6C4CD613-0D78-463C-913E-20544D3C761B} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162072 2023-05-23] (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\localserver32 -> C:\Users\HP\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\FileCoAuth.exe => No File

EmptyTemp:
End
Uložte na plochu jako fixlist.txt. Spusťte znovu FRST a klikněte na >Fix<. Po skončení akce se objeví log, který sem zkopírujte.
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

samsungs6edge
Návštěvník
Návštěvník
Příspěvky: 138
Registrován: 26 kvě 2017 14:48

Re: Notebook HP - neustálé vytížení CPU

#3 Příspěvek od samsungs6edge »

Fix result of Farbar Recovery Scan Tool (x64) Version: 23-05-2023
Ran by HP (23-05-2023 19:59:19) Run:1
Running from C:\Users\HP\Desktop
Loaded Profiles: HP
Boot Mode: Normal
==============================================

fixlist content:
*****************
Start

CloseProcesses:
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate: Restriction <==== ATTENTION
Task: {5AD38F3C-C89E-4D56-B678-14019B62A92B} - System32\Tasks\GoogleUpdateTaskMachineUA{1CD65F52-0D3D-4BAD-B5A8-7DA82AFC4072} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162072 2023-05-23] (Google LLC -> Google LLC)
Task: {DBDB2ACB-001A-4489-82A6-6B635F93F0E9} - System32\Tasks\GoogleUpdateTaskMachineCore{6C4CD613-0D78-463C-913E-20544D3C761B} => C:\Program Files (x86)\Google\Update\GoogleUpdate.exe [162072 2023-05-23] (Google LLC -> Google LLC)
CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E}\InprocServer32 -> C:\Users\HP\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\amd64\FileSyncShell64.dll => No File
CustomCLSID: HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2}\localserver32 -> C:\Users\HP\AppData\Local\Microsoft\OneDrive\19.043.0304.0013\FileCoAuth.exe => No File

EmptyTemp:
End
*****************

Processes closed successfully.
HKLM\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Plain\{5AD38F3C-C89E-4D56-B678-14019B62A92B}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{5AD38F3C-C89E-4D56-B678-14019B62A92B}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineUA{1CD65F52-0D3D-4BAD-B5A8-7DA82AFC4072} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineUA{1CD65F52-0D3D-4BAD-B5A8-7DA82AFC4072}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Logon\{DBDB2ACB-001A-4489-82A6-6B635F93F0E9}" => removed successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tasks\{DBDB2ACB-001A-4489-82A6-6B635F93F0E9}" => removed successfully
C:\Windows\System32\Tasks\GoogleUpdateTaskMachineCore{6C4CD613-0D78-463C-913E-20544D3C761B} => moved successfully
"HKLM\Software\Microsoft\Windows NT\CurrentVersion\Schedule\TaskCache\Tree\GoogleUpdateTaskMachineCore{6C4CD613-0D78-463C-913E-20544D3C761B}" => removed successfully
HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{1BF42E4C-4AF4-4CFD-A1A0-CF2960B8F63E} => removed successfully
HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{7AFDFDDB-F914-11E4-8377-6C3BE50D980C} => removed successfully
HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{82CA8DE3-01AD-4CEA-9D75-BE4C51810A9E} => removed successfully
HKU\S-1-5-21-3588770567-3402981821-2936807127-500_Classes\CLSID\{9489FEB2-1925-4D01-B788-6D912C70F7F2} => removed successfully

=========== EmptyTemp: ==========

FlushDNS => completed
BITS transfer queue => 0 B
DOMStore, IE Recovery, AppCache, Feeds Cache, Thumbcache, IconCache => 27452247 B
Java, Discord, Steam htmlcache, WinHttpAutoProxySvc/winhttp *.cache => 0 B
Windows/system/drivers => 1172931 B
Edge => 0 B
Chrome => 46655388 B
Firefox => 0 B
Opera => 0 B

Temp, IE cache, history, cookies, recent:
Default => 0 B
ProgramData => 0 B
Public => 0 B
systemprofile => 0 B
systemprofile32 => 0 B
LocalService => 0 B
NetworkService => 1304 B
k => 1304 B
HP => 3073329 B

RecycleBin => 0 B
EmptyTemp: => 74.7 MB temporary data Removed.

================================


The system needed a reboot.

==== End of Fixlog 19:59:28 ====

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118289
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Notebook HP - neustálé vytížení CPU

#4 Příspěvek od Rudy »

Smazáno. Nastala nějaká změna?
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

samsungs6edge
Návštěvník
Návštěvník
Příspěvky: 138
Registrován: 26 kvě 2017 14:48

Re: Notebook HP - neustálé vytížení CPU

#5 Příspěvek od samsungs6edge »

Zdravím je to o něco lepší, ale podle mě asi bude vadný SSD Disk kde mě crystal disk info ukazuje 81% zdraví SSD disku, ale ještě kontroluji RAM. Ale i tak děkuji za kontrolu

Uživatelský avatar
Rudy
Site Admin
Site Admin
Příspěvky: 118289
Registrován: 30 říj 2003 13:42
Bydliště: Plzeň
Kontaktovat uživatele:

Re: Notebook HP - neustálé vytížení CPU

#6 Příspěvek od Rudy »

Ten disk je možný, ale o chybě RAM pochybuji. PC by pak spíše rovnou padal, než tuhnul. Nemáte zač! :)
Dotazy a logy vkládejte pouze do vašich threadů. Soukromé zprávy, icq a e-maily neslouží k řešení vašich problémů.

Podpořte, prosím, naše fórum : https://platba.viry.cz/payment/.

Navštivte: Obrázek

e-mail: rudy(zavináč)forum.viry.cz

Varování:
Před odvirováním PC si udělejte zálohy svých důležitých dat (pošta, kontakty, dokumenty, fotografie, videa, hudba apod.). Virus mimo svých "viditelných" aktivit může poškodit systém!


Po dořešení vašeho problému bude vlákno zamknuto. Stejně tak tehdy, pokud bude nečinné více než 14dnů. Pokud budete chtít vlákno aktivovat, napište mi na mail uvedený výše.

Odpovědět